Privacy Policy

Last updated: 25 July 2026

This Privacy Policy explains how Jamaat Timings (“we”, “us”, or “our”) collects, uses, stores, and protects information when you use our services. It applies to:

  • the website at jamaattimings.com;
  • our REST API at jamaattimings.com/api;
  • the Jamaat Timings mobile app (Android: com.jamaattimings.jamaattimings, iOS: com.jamaattimings.jamaattimings); and
  • the Quran Tracker mobile app (Android: com.jamaattimings.qurantracker, iOS: com.jamaattimings.qurantracker).

Together, these are referred to as the “Services”. By creating an account or using any of the Services, you agree to this Privacy Policy. If you do not agree, please do not use the Services.

1. Who we are

Jamaat Timings provides prayer (jamaat) timings for masjids, related community features, and Quran reading progress tracking. We are based in Telangana, India.

For privacy questions or requests, contact us through our Contact page.

2. Information we collect

We collect information in the following categories, depending on how you use the Services.

2.1 Account and profile information

When you register or maintain an account (on the website or in a mobile app), we may collect:

  • full name;
  • email address;
  • mobile phone number;
  • password (stored only in hashed form — we never store your plain-text password);
  • optional profile details such as gender, date of birth, profile photo, address, city, and approximate location (latitude/longitude) if you provide them;
  • your selected or preferred masjid, where applicable;
  • account status flags (for example, email or mobile verification, active or blocked status).

During signup or login we may also record the type of device or browser used (for example, web browser, Android, or iOS) and a general device label to help us support and secure the platform.

2.2 Verification and security

  • One-time passwords (OTP): we send verification codes to your email and/or mobile number for account signup, email or mobile verification, and password reset. OTP records are kept only as long as needed to complete verification.
  • API access tokens: when you sign in through a mobile app or API client, we issue a secure token (Laravel Sanctum) so you can stay signed in. Mobile apps store this token locally on your device (see Section 6).
  • Mobile app request signing: our mobile apps include cryptographic headers (X-App-Client-Id, X-App-Timestamp, X-App-Signature) to verify that API requests come from our official apps. These headers do not contain your personal information; they help prevent abuse of our API.
  • Web sessions: when you use the website, we use session cookies to keep you logged in and to protect forms against cross-site request forgery.

2.3 Quran Tracker data

If you use Quran Tracker (website or app), we store your reading activity linked to your account, including:

  • surah and verse numbers you mark as read;
  • the date of each reading entry;
  • optional reset markers used for progress charts and insights.

This data is used to show your reading history, statistics, and charts within the Service.

2.4 Masjid and community features

When you search masjids, set a current masjid, or submit or update masjid information, we may process:

  • masjid names, addresses, locations, prayer timings, and related details you submit or view;
  • city, state, and country selections;
  • records of masjid-related actions you perform while signed in (for administration and audit purposes).

Masjid listings may include contact details for the masjid itself (such as email or phone) when provided by contributors. That information is displayed as part of the public masjid directory.

2.5 Contact and support messages

If you use our Contact form (website or API), we collect your name, email, mobile number, and message content so we can respond.

2.6 Mobile app notifications and widgets

If you use the Jamaat Timings mobile app, the following device-side features may apply:

  • Local notifications: if you allow notification permission, the app may schedule reminders on your device (for example, before jamaat prayer times or a daily Quran reading reminder). These notifications are generated and stored on your device. We do not receive your notification permission status or schedule details on our servers, and we do not use notifications for advertising.
  • Home screen widgets: if you add a widget, the app stores a cached copy of relevant masjid or Sehri/Iftar timing data on your device so the widget can display it. Widget data stays on your device unless you remove the widget or uninstall the app.
  • App preferences: the app may store your selected language, location filters, and current masjid locally to improve your experience between sessions.

2.7 Technical and usage information

  • Website analytics: for standard web page visits, we may log the page path, a hashed visitor identifier, your account ID (if signed in), IP address, browser user agent, and visit time. This helps us understand how the website is used and improve it.
  • Google Analytics (optional): if enabled on our website, Google Analytics may collect usage data such as pages viewed and general device/browser information. IP anonymization is enabled where supported. Google’s practices are governed by Google’s Privacy Policy.
  • Server logs: like most online services, our servers may temporarily log IP addresses, request timestamps, and error information for security, troubleshooting, and reliability.

API and mobile app usage is generally not recorded in the same page-visit analytics system as the website, but related server and security logs may still apply.

3. How we use your information

We use collected information to:

  • create and manage your account and authenticate you across web, API, and mobile apps;
  • provide masjid search, prayer timings, timezone tools, Sehri/Iftar information, and related features;
  • track and display your Quran reading progress in Quran Tracker;
  • send OTP codes and service-related emails (such as verification messages);
  • respond to contact and support requests;
  • maintain security, prevent fraud and abuse, and enforce our terms;
  • improve, maintain, and troubleshoot the Services;
  • comply with applicable law.

We do not sell your personal information.

4. How we share information

We may share information only in these situations:

  • Service providers: with vendors that help us operate the Services (for example, email delivery for OTP and verification messages, hosting, and infrastructure). They may process data only on our instructions and for the purposes described here.
  • Public masjid directory: masjid information you submit may be visible to other users as part of the directory.
  • Legal requirements: when required by law, regulation, legal process, or to protect the rights, safety, and security of users, the public, or Jamaat Timings.
  • Business transfers: in connection with a merger, acquisition, or sale of assets, subject to appropriate confidentiality safeguards.

5. Data retention

We keep personal information only as long as needed for the purposes described in this policy, unless a longer period is required by law. For example:

  • account data is retained while your account is active and for a reasonable period afterward if you delete it;
  • OTP records are short-lived and removed after verification or expiry;
  • Quran reading logs are retained while your account exists so you can view your history;
  • contact messages are kept as long as needed to handle your inquiry and for internal records;
  • analytics and server logs are retained for limited periods appropriate to their purpose.

6. Cookies, local storage, and similar technologies

Website

We use essential cookies and similar technologies for:

  • keeping you signed in (session authentication);
  • security (for example, CSRF protection);
  • remembering basic preferences needed for the site to function.

If Google Analytics is enabled, additional analytics cookies or scripts may be used as described in Section 2.7. You can control cookies through your browser settings; disabling essential cookies may prevent some features from working.

Mobile apps

Our mobile apps store your API authentication token, language preference, location filters, cached masjid data for widgets, and similar settings locally on your device using secure on-device storage (AsyncStorage). This allows you to remain signed in and use widgets and reminders between app sessions. You can remove this data by logging out, removing widgets, or uninstalling the app.

Our mobile apps do not use advertising trackers.

7. Security

We use reasonable technical and organizational measures to protect your information, including HTTPS encryption in transit, hashed passwords, access controls, and API protections for mobile clients. No method of transmission or storage is completely secure; we cannot guarantee absolute security.

8. Your choices and rights

Depending on applicable law, you may have the right to:

  • access, correct, or update your account information through your profile or by contacting us;
  • request deletion of your account, subject to legal or operational requirements;
  • withdraw consent where processing is based on consent, where applicable;
  • object to or restrict certain processing, where applicable;
  • lodge a complaint with a data protection authority in your jurisdiction.

To make a request, use our Contact page. We may need to verify your identity before fulfilling certain requests.

9. Children’s privacy

The Services are not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, please contact us and we will take appropriate steps to delete it.

10. International users

Our Services are operated from India. If you access the Services from outside India, your information may be processed and stored in India or where our service providers operate. By using the Services, you understand that your information may be transferred to jurisdictions that may have different data protection laws than your country.

11. Third-party links and services

The Services may link to third-party websites or services (for example, Google Maps or Google Analytics). We are not responsible for the privacy practices of those third parties. We encourage you to review their policies before providing information to them.

12. Changes to this policy

We may update this Privacy Policy from time to time. The “Last updated” date at the top will reflect the latest version. Material changes may also be communicated through the website or apps where appropriate. Continued use of the Services after an update means you accept the revised policy.

The same policy text is available via our API at /api/content/privacy-policy for in-app display.

13. Contact us

If you have questions about this Privacy Policy or how we handle your data, please reach out through our Contact page at jamaattimings.com/contact.